Bug #3102: Buffer overflow with rfc822_date
| From: | sherin at simmcomm dot ch | Date: | Tue, 04 Jan 2000 16:01:08 +0000 |
| Subject: | Bug #3102: Buffer overflow with rfc822_date | ||
| Groups: | php.dev | ||
| Request: | Send a blank email to php-dev+get-14266@lists.php.net to get a copy of this message | ||
From: sherin@simmcomm.ch
Operating system: Linux
PHP version: 3.0.13
PHP Bug Type: IMAP related
Bug description: Buffer overflow with rfc822_date
A buffer overflow occured in the function php3_imap_check in functions/imap.c while executing the
following command:
rfc822_date (date);
The problem with this is that it is not checked if the returned date string is too long for the
buffer. In my configuration i didn`t set up the timezone correct, so I got a somewhat large date
string back.:
"Tue, 4 Jan 2000 15:42:40 +0000 (Local time zone must be set--see zic manual page)"
which was larger than the 50 chars allocated for the variable date could handle. I assume there are
also other places where this problem occurs.